-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 16 Jan 2025 17:16:37 +0100 Source: 389-ds-base Binary: 389-ds-base 389-ds-base-dbgsym 389-ds-base-dev 389-ds-base-libs 389-ds-base-libs-dbgsym Architecture: armel Version: 2.3.1+dfsg1-1+deb12u1 Distribution: bookworm Urgency: high Maintainer: arm Build Daemon (arm-ubc-01) Changed-By: Andrej Shadura Description: 389-ds-base - 389 Directory Server suite - server 389-ds-base-dev - 389 Directory Server suite - development files 389-ds-base-libs - 389 Directory Server suite - libraries Closes: 1072531 1082852 Changes: 389-ds-base (2.3.1+dfsg1-1+deb12u1) bookworm; urgency=high . * Non-maintainer upload. * Apply security patches from the upstream: - CVE-2024-2199 and CVE-2024-8445: Crash when modifying userPassword using malformed input (Closes: #1072531, #1082852). - CVE-2024-5953: Denial of service while attempting to log in with a user with a malformed hash in their password. - CVE-2024-3657: Failure on the directory server with specially-crafted LDAP query leading to denial of service. Checksums-Sha1: 011bf1e0e0c307ef54d66b39af01221e2163dd32 9569584 389-ds-base-dbgsym_2.3.1+dfsg1-1+deb12u1_armel.deb e2c665b0cfea2ce558705c1ee9de52a33e7814db 73696 389-ds-base-dev_2.3.1+dfsg1-1+deb12u1_armel.deb 202aafd0199c35d0ba00d9a49f7def9f149f7ff2 4073576 389-ds-base-libs-dbgsym_2.3.1+dfsg1-1+deb12u1_armel.deb d2f4adc5e06bb7f349b35c1b092b1419e0fb1cec 937272 389-ds-base-libs_2.3.1+dfsg1-1+deb12u1_armel.deb 74962d6c485141c79fb07f0dd36fde01281c10c3 20262 389-ds-base_2.3.1+dfsg1-1+deb12u1_armel-buildd.buildinfo 56d9ac5c39e165c33375e98ad473daa15231262d 2014588 389-ds-base_2.3.1+dfsg1-1+deb12u1_armel.deb Checksums-Sha256: f273be16ab44801227b7a4f46ed4a33a6f644dd868c38570efff75145970c33d 9569584 389-ds-base-dbgsym_2.3.1+dfsg1-1+deb12u1_armel.deb 14690a55a54ea2bb8a49d543b8d4eb2b414c872e4f887c0b9b6edd7ab6ce61d8 73696 389-ds-base-dev_2.3.1+dfsg1-1+deb12u1_armel.deb f13404f6a95df5b693c5e6eff088ac8a1671f761ea2c7c3fb203043ddef975ac 4073576 389-ds-base-libs-dbgsym_2.3.1+dfsg1-1+deb12u1_armel.deb 5300739edac5f1bd9df99a07a54a11445cab55d31fe3f3907e29519a60d7b896 937272 389-ds-base-libs_2.3.1+dfsg1-1+deb12u1_armel.deb 675cf6f360fc280a7d4de7cd1e1a6c4220c27a461dd5d10756dec2f56d17e35c 20262 389-ds-base_2.3.1+dfsg1-1+deb12u1_armel-buildd.buildinfo 5a889ec07a68084aadb09c54faa40388c43ef7d995d2aee2ba9d448b5af95f06 2014588 389-ds-base_2.3.1+dfsg1-1+deb12u1_armel.deb Files: bdfcacbca570bc511f56a3746d563032 9569584 debug optional 389-ds-base-dbgsym_2.3.1+dfsg1-1+deb12u1_armel.deb 32adebbbc538b74e03f57558c9cf0f04 73696 libdevel optional 389-ds-base-dev_2.3.1+dfsg1-1+deb12u1_armel.deb fc71335e8e239fb91d83d4afa995f8da 4073576 debug optional 389-ds-base-libs-dbgsym_2.3.1+dfsg1-1+deb12u1_armel.deb 5395136010fb4bc3d8ed3160f096e95a 937272 libs optional 389-ds-base-libs_2.3.1+dfsg1-1+deb12u1_armel.deb 219f017244f537167ac4bb8a9e17bd2d 20262 net optional 389-ds-base_2.3.1+dfsg1-1+deb12u1_armel-buildd.buildinfo c408f970c4aacd2334d8412ddebb9fe2 2014588 net optional 389-ds-base_2.3.1+dfsg1-1+deb12u1_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEH43oX1cK+BEEs9Pe/9j0ct/+ZwwFAmeVJ4AACgkQ/9j0ct/+ ZwyW/A/9FeSTeRK2AdAMCUGDoRq7QrQdDZymqb7XHXXhYc1YlNi3T+dWisEpBnBn 0gP06EaC0HZvc6H7SJFpMzTOdlNhidliQKikT8CQ6113kcoAbvb2N4cB3jezxbs/ 0qvCE72/GXsltPuBhcbfaMYyp338FwsWzC2hcuhIf9kbjprQJArUM88xhdEvAfNF aE5oeYLPFytTdOjV5ye036s1it7XAU/rxfMLuPLTCreZ43dykwjITCr4Su9BLvYA SQYKp1YBFCVmxJiCeXp/k0U6l+nQwNdxQEdk1DabL9fyR8LBd96RoxaYu0uV7I58 j9EK+G+2HPuC8RhPfJgHkpdjGCpRF+TcvAHUBhmJu1wqhTVlPRI9CFtIv9L56Wxv 60l5DjfhIWmILYNW1hUp8zv02p8KdCm2R3+B4jyq0teer+d58mnrDgulIfBpNm6h NGoTayoMSddXhUQCwpFLjq146RmwUHLZQ8fWzpXAcG1NSxpRe6XfSJXC1M/sSNid CQPrdWX9tPwdautHNUISEjlGdMe0a1ciLSOHIqLG1OP6nEafCk1kLnf7ixgmTT5v q0cnDYY3sjXMsntrwlS/cZ7UQkvtmxtU0Fn4gsUacHGL+4JAzobkVT31cNicFzmU 2HZdQy3ScM4epiBD0w1HJsKsGl9RjDL3knVrXQVCpkA18IYLXjI= =7WeF -----END PGP SIGNATURE-----